CVE-2008-0768
CVE information
Published
Last Modified
CVSSv2.0 Severity
Impact Analysis
Description
Multiple stack-based and heap-based buffer overflows in the Windows RPC components for IBM Informix Storage Manager (ISM), as used in Informix Dynamic Server (IDS) 10.00.xC8 and earlier and 11.10.xC2 and earlier, allow attackers to execute arbitrary code via crafted XDR requests..
CVSSv2.0 Score
- Severity
- High
- Base Score
- 10/10
- Exploit Score
- 10/10
- Access Vector
- Network
- Access Complexity
- Low
- Authentication Required
- None
- Impact Score
- 10/10
- Confidentiality Impact
- Complete
- Availability Impact
- Complete
- Integrity Impact
- Complete
Products Affected
CPE | Affected | Vulnerable | Excluding | Edit |
---|---|---|---|---|
cpe:2.3:a:ibm:informix_dynamic_server:*:*:*:*:*:*:*:* |
Yes
|
10.0 | - | |
cpe:2.3:a:ibm:informix_storage_manager:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:a:ibm:informix_dynamic_server:*:*:*:*:*:*:*:* |
Yes
|
11.10 | - | |
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
No
|
- |
References
- http://www-1.ibm.com/support/search.wss?rs=0&q=IC55040&apar=only
- http://www-1.ibm.com/support/search.wss?rs=0&q=IC55041&apar=only
- http://www.securitytracker.com/id?1019281
- http://secunia.com/advisories/28689
- http://www-01.ibm.com/support/docview.wss?uid=swg21294211
- http://www.securityfocus.com/bid/27485
- http://www.vupen.com/english/advisories/2008/0317
- https://exchange.xforce.ibmcloud.com/vulnerabilities/40018